ar33zy / Nimjector
☆42Updated 2 years ago
Alternatives and similar repositories for Nimjector:
Users that are interested in Nimjector are comparing it to the libraries listed below
- ShellcodeFluctuation PoC ported to Nim☆76Updated 2 years ago
- ☆48Updated last year
- Threadless shellcode injection tool☆63Updated 8 months ago
- malware written for educational purposes☆66Updated 5 months ago
- Beacon Object Files (not Buffer Overflows)☆54Updated 2 years ago
- HelpSystems Nanodump, but wrapped in powershell via Invoke-ReflectivePEInjection☆55Updated 3 years ago
- A quick example of the Hells Gate technique in Nim☆95Updated 3 years ago
- I have documented all of the AMSI patches that I learned till now☆71Updated 3 weeks ago
- My implementation of Halo's Gate technique in C#☆54Updated 3 years ago
- Code snippets to add on top of cobalt strike sleep mask to achieve patchless hook on AMSI and ETW☆84Updated 2 years ago
- Just another ntdll unhooking using Parun's Fart technique☆74Updated 2 years ago
- ☆54Updated 3 months ago
- D/Invoke implementation in Nim☆101Updated 2 years ago
- NimicStack is the pure Nim implementation of Call Stack Spoofing technique to mimic legitimate programs☆94Updated 2 years ago
- A version of NetLoader, Execute Assemblies and Bypass ETW and AMSI using Hardware Breakpoints☆85Updated 3 months ago
- ☆98Updated last year
- Modified versions of the Cobalt Strike Process Injection Kit☆94Updated last year
- Sleep Obfuscation☆45Updated 2 years ago
- ☆62Updated 2 years ago
- Run Cobalt Strike BOFs in Brute Ratel C4!☆65Updated last week
- Tool for playing with Windows Access Token manipulation.☆54Updated 2 years ago
- A C# port of the MinHook API hooking library☆52Updated 2 years ago
- Payload for DLL sideloading of the OneDriveUpdater.exe, based on the PaloAltoNetwork Unit42's blog post☆91Updated 2 years ago
- PoC XLL builder in Python/Nim☆46Updated 2 years ago
- A care package of useful bofs for red team engagments☆55Updated 4 months ago
- Sleep obfuscation for shellcode implants and their reflective shit☆51Updated last year
- ☆40Updated 2 years ago
- Patch AMSI and ETW in remote process via direct syscall☆81Updated 2 years ago
- Beacon Object File allowing creation of Beacons in different sessions.☆80Updated 2 years ago
- A simple C++ Windows tool to get information about processes exposing named pipes.☆37Updated last month